microsoft / windows_server_2022
1,272 known vulnerabilities in microsoft windows_server_2022.
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-50504 | Low | 0.9% | 6.5 | Buffer over-read in Remote Desktop Client allows an unauthorized attacker to dis… | |
| CVE-2026-54126 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-55003 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-57979 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-58533 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-58535 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-58539 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows RDP allows an unauthorized attacker to disclose in… | |
| CVE-2026-58546 | Low | 0.9% | 6.5 | Use of uninitialized resource in Windows RDP allows an unauthorized attacker to … | |
| CVE-2026-78453 | Low | 0.9% | 6.5 | Integer underflow (wrap or wraparound) in Microsoft Windows SCSI Class System Fi… | |
| CVE-2023-21722 | Low | 0.9% | 5.0 | .NET Framework Denial of Service Vulnerability | |
| CVE-2026-34348 | Low | 0.9% | 6.5 | Protection mechanism failure in Windows Event Logging Service allows an authoriz… | |
| CVE-2026-42903 | Low | 0.9% | 6.5 | Null pointer dereference in Windows Kerberos allows an authorized attacker to de… | |
| CVE-2026-69591 | Low | 0.9% | 5.7 | Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose inf… | |
| CVE-2026-69552 | Low | 0.9% | 5.7 | Generation of error message containing sensitive information in Windows Print Sp… | |
| CVE-2026-69572 | Low | 0.9% | 5.7 | Out-of-bounds read in Windows SMB Client allows an authorized attacker to disclo… | |
| CVE-2021-36969 | Low | 0.9% | 5.5 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulne… | |
| CVE-2021-36972 | Low | 0.9% | 5.5 | Windows SMB Information Disclosure Vulnerability | |
| CVE-2021-38635 | Low | 0.9% | 5.5 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulne… | |
| CVE-2021-38636 | Low | 0.9% | 5.5 | Windows Redirected Drive Buffering SubSystem Driver Information Disclosure Vulne… | |
| CVE-2021-38637 | Low | 0.9% | 5.5 | Windows Storage Information Disclosure Vulnerability | |
| CVE-2026-20824 | Low | 0.9% | 5.5 | Protection mechanism failure in Windows Remote Assistance allows an unauthorized… | |
| CVE-2026-61918 | Low | 0.9% | 6.5 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to d… | |
| CVE-2026-62782 | Low | 0.9% | 6.5 | Out-of-bounds read in Windows SMB Client allows an unauthorized attacker to disc… | |
| CVE-2021-42277 | Low | 0.9% | 5.5 | Diagnostics Hub Standard Collector Elevation of Privilege Vulnerability | |
| CVE-2026-50415 | Low | 0.9% | 5.3 | Exposure of sensitive information to an unauthorized actor in Windows Media allo… | |
| CVE-2026-69569 | Low | 0.9% | 5.7 | Untrusted pointer dereference in Windows Print Spooler Components allows an auth… | |
| CVE-2026-50324 | Low | 0.9% | 5.9 | Loop with unreachable exit condition ('infinite loop') in Active Directory Feder… | |
| CVE-2026-68874 | Low | 0.8% | 5.7 | Out-of-bounds read in Windows Program Compatibility Assistant Service allows an … | |
| CVE-2026-69349 | Low | 0.8% | 5.7 | Use of uninitialized resource in Windows Management Instrumentation allows an au… | |
| CVE-2026-69507 | Low | 0.8% | 5.7 | Insertion of sensitive information into externally-accessible file or directory … | |
| CVE-2026-69803 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-69929 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-70124 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-69930 | Low | 0.8% | 5.9 | Out-of-bounds read in Windows DHCP Server allows an unauthorized attacker to dis… | |
| CVE-2026-61921 | Low | 0.8% | 6.5 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to d… | |
| CVE-2026-61924 | Low | 0.8% | 6.5 | Out-of-bounds read in Remote Desktop Client allows an unauthorized attacker to d… | |
| CVE-2021-38632 | Low | 0.8% | 5.7 | Windows BitLocker Security Feature Bypass Vulnerability | |
| CVE-2026-42907 | Low | 0.8% | 6.5 | Exposure of sensitive information to an unauthorized actor in Windows Shell allo… | |
| CVE-2026-69372 | Low | 0.8% | 5.7 | Out-of-bounds read in Windows Network File System allows an authorized attacker … | |
| CVE-2026-42914 | Low | 0.8% | 5.3 | Out-of-bounds read in Windows Kerberos allows an authorized attacker to deny ser… | |
| CVE-2022-41064 | Low | 0.8% | 5.8 | .NET Framework Information Disclosure Vulnerability | |
| CVE-2022-41098 | Low | 0.8% | 5.5 | Windows GDI+ Information Disclosure Vulnerability | |
| CVE-2024-21340 | Low | 0.8% | 4.6 | Windows Kernel Information Disclosure Vulnerability | |
| CVE-2026-20834 | Low | 0.8% | 4.6 | Absolute path traversal in Windows Shell allows an unauthorized attacker to perf… | |
| CVE-2026-73019 | Low | 0.7% | 4.3 | Improper resolution of path equivalence in Windows URL Moniker allows an unautho… | |
| CVE-2024-38254 | Low | 0.7% | 5.5 | Windows Authentication Information Disclosure Vulnerability | |
| CVE-2024-38235 | Low | 0.7% | 6.5 | Windows Hyper-V Denial of Service Vulnerability | |
| CVE-2026-20821 | Low | 0.7% | 6.2 | Exposure of sensitive information to an unauthorized actor in Windows Remote Pro… | |
| CVE-2026-56649 | Low | 0.7% | 5.9 | Concurrent execution using shared resource with improper synchronization ('race … | |
| CVE-2026-20932 | Low | 0.7% | 5.5 | Exposure of sensitive information to an unauthorized actor in Windows File Explo… |